Project

General

Profile

Actions

Bug #12952

closed

After update to v. 22.01 DNS Resolver Custom Options for bypassing PfBlockerNG not working

Added by Thomas Kauders over 3 years ago. Updated over 3 years ago.

Status:
Closed
Priority:
Normal
Assignee:
-
Category:
pfBlockerNG
Target version:
-
Start date:
03/17/2022
Due date:
% Done:

0%

Estimated time:
Plus Target Version:
Affected Version:
Affected Plus Version:
Affected Architecture:
7100

Description

Immediately after updating PfSense+ on Netgate 7100 from v. 21.05.2 to 22.01 the bypass setting for PfBlockerNG stopped working.

On 21.05.2 PfBlockerNG blocked blacklisted sites on Vlan 192.168.3.0/24 alone.
From 22.01 All Vlans are filtered.

DNS Resolver custom options are (unchanged between updates):

server:
access-control-view: 172.50.50.0/24 bypass
access-control-view: 172.17.17.0/24 bypass
access-control-view: 192.168.3.0/24 dnsbl

view:
name: "bypass"
view-first: yes

view:
name: "dnsbl"
view-first: yes
server:include: /var/unbound/pfb_dnsbl.*conf


NB: We are using the system in a corporate production environment, the issue is very crippling for our productivity and ability to service our customers.

*Sysem information:
Netgate 7100

22.01-RELEASE (amd64)
built on Mon Feb 07 16:37:59 UTC 2022
FreeBSD 12.3-STABLE

BIOS:
Vendor: coreboot
Version: ADI_PLCC-01.00.00.11
Release Date: Tue Jan 8 2019

Intel(R) Atom(TM) CPU C3558 @ 2.20GHz
4 CPUs: 1 package(s) x 4 core(s)
AES-NI CPU Crypto: Yes (active)
QAT Crypto: Yes (inactive)

For further information contact on mail or call +4560149911


Files

DNSBL.png (86.8 KB) DNSBL.png Thomas Kauders, 03/17/2022 03:45 AM
DNS resolver.png (50.2 KB) DNS resolver.png Thomas Kauders, 03/17/2022 03:45 AM
Actions

Also available in: Atom PDF